(Windows
7:
Lesson 4)

{ Install and Test Comodo Firewall
Against BackTrack }

Section 0. Background
Information

Comodo Firewall

Comodo Internet Security was designed
around the concept of layered security and provides the following layers
of protection: Antivirus, Firewall, Host-based intrusion prevent
(Defense+), and Remote assistance (GeekBuddy).

As a condition of your use of this Web
site, you warrant to computersecuritystudent.com that you will not use
this Web site for any purpose that is unlawful or
that is prohibited by these terms, conditions, and notices.

In accordance with UCC § 2-316, this
product is provided with "no warranties, either express or implied." The
information contained is provided "as-is", with "no guarantee of
merchantability."

In addition, this is a teaching website
that does not condone malicious behavior of
any kind.

Your are on notice, that continuing
and/or using this lab outside your "own" test environment
is considered malicious and is against the law.

-sS, This technique is often referred
to as half-open scanning, because you don't open a full TCP
connection. You send a SYN packet, as if you are going to open a
real connection and then wait for a response. It is also relatively
unobtrusive and stealthy since it never completes a TCP connections.

This technique is often referred to as
half-open scanning, because you don't open a full SCTP association.
You send an INIT chunk, as if you are going to open a real
association and then wait for a response.

SCTP is a relatively new alternative to
the TCP and UDP protocols, combining most characteristics of TCP and
UDP, and also adding new features like multi-homing and
multi-streaming. SCTP INIT scan is the SCTP equivalent of a TCP SYN
scan. It can be performed quickly, scanning thousands of ports per
second on a fast network not hampered by restrictive firewalls. Like
SYN scan, INIT scan is relatively unobtrusive and stealthy, since it
never completes SCTP associations.